New Security Vulnerabilities 13th September 2007

The following new vulnerabilities were added to the Telspace's database this
month:

 

 

TOTAL THREATS IN THE DATABASE 15362

 

NEW THREATS RISK FACTOR SUMMARY
(*****) Urgent Risk 2
(**** ) Critical Risk 27
(*** ) High Risk 1
(** ) Medium Risk 3
(* ) Low Risk 1

 

NEW THREATS FAMILY SUMMARY
Red Hat Local Checks 7
Fedora Local Checks 6
Windows 5
Web Services 4
Centos Local Checks 3
Mandrake Local Checks 3
FreeBSD Local Checks 3
Remote Shell Access 1
Debian Local Checks 1
Service Detection 1

 

(*****) Urgent Risk - Windows
Timbuktu Pro < 8.6.5 Multiple Vulnerabilities

(*****) Urgent Risk - Remote Shell Access
Kerio MailServer < 6.4.1 Vulnerability

(**** ) Critical Risk - Centos Local Checks
CentOS : RHSA-2007-0873

(**** ) Critical Risk - Web Services
PHP < 5.2.4 Multiple Vulnerabilities

(**** ) Critical Risk - Red Hat Local Checks
RHSA-2007-0795: cyrus

(**** ) Critical Risk - Red Hat Local Checks
RHSA-2007-0875: mysql

(**** ) Critical Risk - Fedora Local Checks
Fedora Core 6 2007-677: libvorbis

(**** ) Critical Risk - Web Services
Joomla searchword Command Execution Vulnerability

(**** ) Critical Risk - Mandrake Local Checks
MDKSA-2007:171: kernel

(**** ) Critical Risk - Windows
Novell Client nwspool.dll Buffer Overflow Vulnerabilities (bug 300870)

(**** ) Critical Risk - Windows
Winamp < 5.35 Buffer Overflow Vulnerability

(**** ) Critical Risk - Windows
Oracle JInitiator beans.ocx ActiveX Buffer Overflow Vulnerabilities

(**** ) Critical Risk - Red Hat Local Checks
RHSA-2007-0873: star

(**** ) Critical Risk - Red Hat Local Checks
RHSA-2007-0858: krb

(**** ) Critical Risk - Fedora Local Checks
Fedora Core 6 2007-690: krb5

(**** ) Critical Risk - Mandrake Local Checks
MDKSA-2007:173: tar

(**** ) Critical Risk - Centos Local Checks
CentOS : RHSA-2007-0875

(**** ) Critical Risk - Red Hat Local Checks
RHSA-2007-0774: kernel

(**** ) Critical Risk - Fedora Local Checks
Fedora Core 6 2007-689: fetchmail

(**** ) Critical Risk - Red Hat Local Checks
RHSA-2007-0539: aide

(**** ) Critical Risk - Red Hat Local Checks
RHSA-2007-0878: cyrus

(**** ) Critical Risk - Debian Local Checks
 [DSA1367] DSA-1367-1 krb5

(**** ) Critical Risk - Fedora Local Checks
Fedora Core 6 2007-683: tar

(**** ) Critical Risk - Fedora Local Checks
Fedora Core 6 2007-685: kdegraphics

(**** ) Critical Risk - Centos Local Checks
CentOS : RHSA-2007-0878

(**** ) Critical Risk - Windows
Yahoo! Messenger YVerInfo ActiveX Buffer Overflow Vulnerabilities

(**** ) Critical Risk - Mandrake Local Checks
MDKSA-2007:172: clamav

(**** ) Critical Risk - Web Services
MDPro topicid parameter SQL Injection Vulnerability

(**** ) Critical Risk - Fedora Local Checks
Fedora Core 6 2007-679: kernel

(*** ) High Risk - Web Services
VHCS Session Fixation Vulnerability

(** ) Medium Risk - FreeBSD Local Checks
FreeBSD : rkhunter -- insecure temporary file creation (995)

(** ) Medium Risk - FreeBSD Local Checks
FreeBSD : gtar -- Directory traversal vulnerability (993)

(** ) Medium Risk - FreeBSD Local Checks
FreeBSD : fetchmail (994)

(* ) Low Risk - Service Detection
Timbuktu Detection (UDP)

 



Copyright © 2010 Telspace. All Rights Reserved